CVE-2022-3126
PoC —CVSS 3.1
4.3 medium
EPSS
<1%p21
Published
()
Modified
Description
The Frontend File Manager Plugin WordPress plugin before 21.4 does not have CSRF check when uploading files, which could allow attackers to make logged in users upload files on their behalf
- Vendors
- najeebmedia
- Products
- frontend file manager plugin
- Ecosystems
- WordPress
- Weakness
- CWE-352
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.